Cloud Wars
  • Home
  • Top 10
  • CW Minute
  • CW Podcast
  • Categories
    • AI and Copilots
    • Innovation & Leadership
    • Cybersecurity
    • Data
  • Member Resources
    • Cloud Wars AI Agent
    • Digital Summits
    • Guidebooks
    • Reports
  • About Us
    • Our Story
    • Tech Analysts
    • Marketing Services
  • Ask Copilot
  • Agentic AI Battleground
Twitter Instagram
  • Summit NA
  • Dynamics Communities
  • AI Copilot Summit NA
  • Ask Cloud Wars
Twitter LinkedIn
Cloud Wars
  • Home
  • Top 10
  • CW Minute
  • CW Podcast
  • Categories
    • AI and CopilotsWelcome to the Acceleration Economy AI Index, a weekly segment where we cover the most important recent news in AI innovation, funding, and solutions in under 10 minutes. Our goal is to get you up to speed – the same speed AI innovation is taking place nowadays – and prepare you for that upcoming customer call, board meeting, or conversation with your colleague.
    • Innovation & Leadership
    • CybersecurityThe practice of defending computers, servers, mobile devices, electronic systems, networks, and data from malicious attacks.
    • Data
  • Member Resources
    • Cloud Wars AI Agent
    • Digital Summits
    • Guidebooks
    • Reports
  • About Us
    • Our Story
    • Tech Analysts
    • Marketing Services
  • Agentic AI Battleground
    • Login / Register
Cloud Wars
    • Login / Register
Home » Microsoft Outlines Security, Governance, and Interoperability Features Coming to Agent 365
AI and Copilots

Microsoft Outlines Security, Governance, and Interoperability Features Coming to Agent 365

Tom SmithBy Tom SmithMay 8, 20266 Mins Read
Facebook Twitter LinkedIn Email
Share
Facebook Twitter LinkedIn Email

Microsoft has made Agent 365 generally available and detailed at least two dozen features of its much-touted “control plane,” including several upcoming features that haven’t previously been discussed.

In this report, I’ll detail five of those forthcoming new features that I found the most noteworthy; they span registry and policy updates, security, and governance.

To set the stage for these updates, here’s context on Agent 365 and its core value proposition: The company first announced Agent 365 last November, positioning Agent 365 as a platform to govern expanding agent installations through an agent registry, access controls, visualization technology, interoperability with third-party agents and platforms, and security through existing Microsoft platforms. An Agent 365 dashboard is a critical entry point to view all the agent data for an enterprise.

The current and forthcoming features, taken together, bring enterprise-level controls to AI agents. “The shift is clear: scaling agents requires the same operational rigor as any other enterprise system,” said Ray Smith, Microsoft Corporate Vice President, Agent 365, Product. The platform “provides a control plane to help teams observe, secure, and govern agents — including how they interact with data, tools, and enterprise resources.”

Registry and Policy Updates

Forthcoming Agent 365 features – now in preview – increase the syncing functionality of the Agent 365 Registry by extending it to third-party platforms. They also strengthen controls against using agents on a “shadow” basis, that is, AI without IT authorization and control.

Registry Sync

Agent 365 provides unified views to discover, inventory, and govern customers’ agents and platforms. Registry sync enables AI admins to consent to, and connect, partner agent platforms to Agent 365, bringing external agents and their metadata into the registry for a comprehensive view. Customers can take agent-level governance actions directly from the Agent 365 registry, starting with agent deletion, if the partner’s platform supports that capability. The initial preview includes connections to AWS — specifically Amazon Bedrock — and Google Cloud, with additional partner platforms planned for future releases.

View of Registry Sync supporting Amazon’s Bedrock service for access to AI models. This includes options to sync, edit, and delete a connection and a list of synced agents.
Shadow AI Detection and Blocking

Local agents installed on company devices without IT visibility and controls can read files, execute code, and act on a user’s behalf, enabling access to sensitive data. Therefore they can introduce significant risk.

The forthcoming Shadow AI page in Agent 365, enabled by Microsoft Defender and Microsoft Intune, helps identify agent activity on Windows devices and apply endpoint controls. Initial support includes the OpenClaw autonomous AI agent, with plans to expand to additional widely used agents over time.

The Shadow AI page also gives admins a centralized view of local agent usage and can take action to limit unsanctioned execution paths, helping reduce risk while supporting approved tools. Microsoft said coverage will extend over time beyond OpenClaw to include GitHub Copilot CLI, Claude Code, and more.

The new Shadow AI page of Agent 365, where Intune policies are being applied

Security Updates

Agent Threat Hunting and Investigation

Security teams can tap observability logs in Agent 365 for Advanced Threat Hunting to proactively search for vulnerabilities and potential exposures in their organization’s agentic environment. Security teams can identify risky configurations, for example, such as agents with Model Context Protocol (MCP) tools. Such permissions allow MCP tools to operate as “makers,” potentially leading to privilege escalation and exposure. Security teams can use advanced hunting to run queries that generate a list of agents that could introduce risks, then collaborate across teams to remediate so those risks don’t escalate into more serious security incidents.

Agent Security Posture Management

Microsoft Defender provides agent security posture management for Agent 365 by assessing the security posture of Foundry and Copilot Studio agents, identifying vulnerabilities and surfacing prioritized security recommendations, risk context, and attack path analysis. This enables teams to focus remediation where risk is highest and thereby reduce exposure proactively.

Threat Detection and Blocking

Protecting IT resources against the fast-developing AI threat landscape, Microsoft Defender enables security teams to detect and investigate agent threats at runtime. If an agent abuses its permissions to access an email MCP server, for example, Microsoft Defender can block invocation of the server. In so doing, it reduces the incident’s impact and triggers alerts in the Defender portal for investigation and response.

Governance

In addition to forthcoming features detailed above, Microsoft also filled in additional details of lifecycle/governance features in the initial release. Details on two of those below:

Agent-Level Lifecycle and Governance

AI admins can install, publish, block, unblock, delete, and assign new owners for agents – all directly from the Agent 365 registry. Centralized lifecycle and governance actions remove friction, reduce delays, and enable fast response as agents are created and shared.

Admin Approval and Publication Flow

Agent approval and publication flow gives admins a centralized control point to review agents before they reach users. Each requested agent’s capabilities can be assessed in terms of data access, permissions, and security compliance in the Agent 365 registry, then an admin can choose to publish or reject an agent within a single workflow. This combats agent sprawl, reduces over‑privileged access, and ensures agents are onboarded with the right governance across Copilot Studio, Microsoft Foundry, and an expanding set agent platforms.

Conclusion

With its new and forthcoming Agent 365 features, Microsoft is equipping customers with the enterprise-grade controls they need to manage AI like any other business or IT asset, underscoring the maturation of AI and agent management. The increased level of interoperability with other AI agent platforms serves as another acknowledgment that the typical IT estate will have agents from Microsoft, third parties, and in-house agents. Bringing unified governance to that mix will give leaders confidence that AI can continue to progress as a robust technology that injects automation into core business processes.

Related Agent 365 Analysis:

  • How Agent 365 and WorkIQ Redefine Business in the AI Era
  • Agent 365: The Platform That Keeps CIOs in Charge as Agents Proliferate
  • Agent 365: Microsoft’s ‘HR for AI Agents’
  • With Agent 365 and Security Tools, Microsoft Equips Customers to Govern AI Agent Estates

Community Summit North America is the largest independent innovation, education, and training event for Microsoft business applications delivered by Expert Users, Microsoft Leaders, MVPs, and Partners. Register now to attend Community Summit in Nashville, TN from October 11-15.

ai Cloud Wars featured Microsoft SaaS
Share. Facebook Twitter LinkedIn Email
Analystuser

Tom Smith

Editor in Chief, analyst, Cloud Wars

Areas of Expertise
  • AI/ML
  • Business Apps
  • Cloud
  • Digital Business

Tom Smith analyzes AI, copilots, cloud companies, and tech innovations for Cloud Wars. He has worked as an analyst tracking technology and tech companies for more than 20 years.

  Contact Tom Smith ...

Related Posts

Microsoft Hardware Pushes More AI Development and Execution to the Edge

June 9, 2026

Google Cloud, Oracle Once Again Lead Hyperscaler Innovation

June 9, 2026

Oracle, Google Cloud Blaze New Trails to Fund $1 Trillion in Backlog

June 9, 2026

Bill McDermott Targets 5 Hypergrowth Opportunities for ‘AI-Native’ ServiceNow

June 8, 2026
Add A Comment

Comments are closed.

Recent Posts
  • Microsoft Hardware Pushes More AI Development and Execution to the Edge
  • Google Cloud, Oracle Once Again Lead Hyperscaler Innovation
  • Oracle, Google Cloud Blaze New Trails to Fund $1 Trillion in Backlog
  • Bill McDermott Targets 5 Hypergrowth Opportunities for ‘AI-Native’ ServiceNow
  • Velosio Acquires Domain 6 to Accelerate AI and Industry Expertise

  • Ask Cloud Wars AI Agent
  • Tech Guidebooks
  • Industry Reports
  • Newsletters

Join Today

Most Popular Guidebooks and Reports

Accounts Payable Reimagined: ERP-Native Automation in Dynamics 365

March 30, 2026

elevaite365 Test Automation: Turning Software Testing into a Strategic Asset with AI

March 6, 2026

Driving Business Transformation with Agentic AI and ServiceNow

January 9, 2026

The Agentic Enterprise: How Microsoft and Industry Leaders Are Redefining Work Through AI

September 2, 2025

Advertisement
Cloud Wars
Twitter LinkedIn
  • Home
  • About Us
  • Privacy Policy
  • Get In Touch
  • Marketing Services
  • Do not sell my information
© 2026 Cloud Wars.

Type above and press Enter to search. Press Esc to cancel.

  • Login
Forgot Password?
Lost your password? Please enter your username or email address. You will receive a link to create a new password via email.
body::-webkit-scrollbar { width: 7px; } body::-webkit-scrollbar-track { border-radius: 10px; background: #f0f0f0; } body::-webkit-scrollbar-thumb { border-radius: 50px; background: #dfdbdb }